CVE-2010-0727 PUBLISHED CVSS 4.900000095367432 MEDIUM

The gfs2_lock function in the Linux kernel before 2.6.34-rc1-next-20100312, and the gfs_lock function in the Linux kernel on Red Hat Enterprise Linux (RHEL) 5 and 6, does not properly remove POSIX locks on files that are setgid without group-execute permission, which allows local users to cause a denial of service (BUG and system crash) by locking a file on a (1) GFS or (2) GFS2 filesystem, and then changing this file's permissions.

EPSS 0.08% · 23.9th percentile

Risk Scores

CVSS v2.0
4.900000095367432
EPSS Score
0.08%
23.9th percentile

Affected Products

VendorProductVersions
linuxlinux_kernel0
redhatenterprise_linux5.0, 6.0
debiandebian_linux5.0
n/an/an/a

Timeline

References

Open in Interactive Console →